Vulnerability Details CVE-2022-39866
Improper access control vulnerability in RegisteredEventMediator.kt SmartThings prior to version 1.7.89.0 allows attackers to access sensitive information via implicit broadcast.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 25.9%
CVSS Severity
CVSS v3 Score 4.0
Products affected by CVE-2022-39866
-
cpe:2.3:a:samsung:smartthings:-
-
cpe:2.3:a:samsung:smartthings:1.7.73.22
-
cpe:2.3:a:samsung:smartthings:1.7.85.12
-
cpe:2.3:a:samsung:smartthings:1.7.85.25